By This Author
Investigating server compromises with cgroups: A Linux DFIR primer Investigating server compromises with cgroups: A Linux DFIR primer
May 13, 2026
Linux security How cloud architects and detection engineers can work together How cloud architects and detection engineers can work together
May 29, 2024
Security operations By the same token: How adversaries abuse AWS cloud accounts and APIs By the same token: How adversaries abuse AWS cloud accounts and APIs
December 5, 2023
Cloud security How process streams can help you detect Linux threats How process streams can help you detect Linux threats
August 3, 2022
Linux security The adversary’s gift: When one technique opens a Pandora’s box The adversary’s gift: When one technique opens a Pandora’s box
July 28, 2021
Linux security Research ATT&CK techniques from the comfort of your VSCode editor Research ATT&CK techniques from the comfort of your VSCode editor
April 14, 2021
MITRE ATT&CK